Method for evaluating a document
Patent Information
- Application Number
- EP2019192698
- Authority / Receiving Office
- EP · EP
- Patent Type
- Patents
- Current Assignee / Owner
- Priority Date
- 2013-08-12
- Filing Date
- 2014-07-14
- Publication Date
- 2026-09-02
- Estimated Expiration
- 2034-07-14
AI Technical Summary
Existing methods for verifying user identity and age in business transactions are time-consuming and require unnecessary user visits to physical locations, leading to high abandonment rates.
A method involving image and audio data transmission between data processing units to capture and evaluate user documents, using transaction identification numbers for secure authentication, and integrating with existing user data systems for quick and secure verification.
Enables rapid, user-friendly identity and age verification with minimal user effort, reducing abandonment rates and ensuring secure, efficient document evaluation.
Smart Images

Figure IMGF0001 
Figure IMGF0002 
Figure IMGF0003
Description
[0001] The invention relates to a method for evaluating a document. background
[0002] In some business transactions, it may be necessary, for example due to legal regulations, to verify a user's identity and / or age. In the past, it was common practice for the user to prove their identity to a postal employee by having the employee examine and verify their identity card. A document confirming the user's identity was then sent by mail. This process is very time-consuming for the user, as it always requires a visit to a post office branch. Consequently, this method has a high abandonment rate.
[0003] Document DE 10 2009 022 381 A1 describes a method for web-based personal identification. This involves collecting a user's personal data via the web (Internet). This data is then compared with data from a reference database to identify the user. The user is subsequently sent an authorization code, which they can then use for authentication. A disadvantage of this method is that capturing the reference data requires at least one instance of personal identification of the user. The aforementioned postal service procedure can be used for this personal identification. Therefore, the user is again required to visit a post office at least once.
[0004] A method and system for evaluating documents are disclosed in document US 2003 / 0139994 A1. A user can insert an identification card or driver's license into the device. Using optical character recognition (OCR), the user's personal data is extracted from the inserted document. The user's signature can also be extracted from the document and compared with another signature to determine a match. The user must use the device, which is typically found at banks, for example.
[0005] Document US 7,734,779 B1 discloses a method for providing a password to a user on a network. Before the password is provided, the user's identity may be verified. For this purpose, a user's identification document may be provided to an agent via video transmission, who then verifies the document and compares it to an image of the user.
[0006] Document US 2013 / 191904A1 discloses systems and procedures for controlling access to a subscriber server over a computer network. A login server receives a request to establish a connection to the subscriber server over the computer network, and the login server receives registration identification data. An initial session is established between the login server and the subscriber server to verify the registration identification data and generate a session password. A second session is established between the login server and the subscriber server. The second session is configured to authorize access, based in part on the registration identification data, to at least a portion of a website associated with the subscriber server.
[0007] Document WO 2006 / 076696A2 concerns a system and procedure for verifying age and identity at the time of creating an internet access account. The procedure allows only adult applicants to obtain unrestricted internet access accounts and / or other access accounts, provided their age and identity are verified in person and the age-verified adults assume responsibility for the use of the account by minors and others.
[0008] Document US 2001 / 037313A1 describes systems that respond to watermarked documents. One system uses watermarks to enable secure online transactions. Another provides a system for exchanging data. One system includes a user terminal and a central site. The user terminal includes a watermark reader and a capture device to capture an image of a watermarked document. The central site contains a database of image hashes. The user terminal communicates with the central site. The watermark reader reads a watermark, calculates a hash of the captured image, and sends the hash to the central site for comparison with the database of image hashes. Summary
[0009] The task is to specify a procedure for evaluating documents that is quick, easy, and secure for the user. In particular, unnecessary steps for the user should be avoided.
[0010] This problem is solved by the method according to independent claim 1. Advantageous embodiments are the subject of dependent claims.
[0011] One aspect describes a procedure for evaluating a document. This procedure comprises the following steps: An image data connection is established to transmit an image signal between a second data processing unit, which includes an image capture device, and a first data processing unit. A transaction identification number associated with user data is recorded in the first data processing unit. User data is then transmitted to the first data processing unit. A document is captured using the image capture device, and an image of the document is transmitted to the first data processing unit via the image data connection. The document is then evaluated. The result of the evaluation can then be stored in a database along with the transaction identification number and the user data.
[0012] The procedure further includes the following steps, which are optionally performed before providing the image data connection and / or before capturing the transaction identification number: generating the transaction identification number in a fourth data processing unit and transmitting the transaction identification number from the fourth data processing unit to the second data processing unit.
[0013] The procedure further includes the following steps, which are optionally carried out after the transaction identification number has been recorded: transmitting the transaction identification number from the first data processing facility to the fourth data processing facility and transmitting the user data from the fourth data processing facility to the first data processing facility in response to the receipt of the transaction identification number.
[0014] The process may, for example, be integrated into a procedure that requires user identification or verification. It may be intended that a user wishes to conclude a contract on a provider's website. To execute the agreement, user verification may be required, for example, due to legal regulations. This verification may relate to the user's identity and / or age. The provider could be a bank where, for example, an account is to be opened, a retailer selling goods subject to youth protection laws, or another service provider (e.g., online gaming, betting agency) that requires, for example, verification of the user's legal age before concluding a contract.
[0015] The provider's website may be made available via a third-party data processing system. For example, the user can access and interact with the website using this second data processing system. For this purpose, the user can use a web browser installed on the second data processing system. For instance, the user can enter user data into a form on the provider's website. Alternatively, user data may already be stored with the provider. In this case, the user can log in to the third-party data processing system using a user ID (e.g., username and password), thus using the existing user data. If verification of identity and / or age is required before concluding a contract, this verification may be provided by a service provider.For example, the provider's website may display a button that starts the check.
[0016] After activating the button, user data can be transferred from the third data processing facility to a fourth data processing facility operated by the service provider. The fourth data processing facility may be linked to a database, for example in the form of a CRM system ( CRM - Customer Relationship Management ) . User data can be transmitted in encrypted form. The user data is then compared with data records stored in the database.
[0017] User data can include, for example, the following information about the user, either individually or in any combination: name (first name and / or last name), academic title, address (street, house number, postal code, and city), a telephone number (landline and / or mobile number), date of birth, place of birth, country, and an email address. When entering user data, it may be stipulated that certain data must be provided as mandatory fields, such as first name, last name, mobile number, and / or email address. The comparison of the submitted user data with the database records can be performed using all data or selected data. For example, it can be checked whether the email address exists in the database. If so, the user can be identified in the database.It may be possible to consider a similarity relationship when comparing the transmitted user data with the records in the database. For example, a user can be identified if the transmitted address differs from the stored address (e.g., due to a change of address), but the other data matches. A threshold for the similarity of the data records can be set.
[0018] If the user is identified as already registered in the database based on the submitted data, they will be considered an existing customer. The further process for existing customers is described below.
[0019] If the user data does not match data in the service provider's database, the user is considered a new customer. In this case, the following procedure may apply.
[0020] An image data connection is provided for transmitting an image signal between the second and first data processing units. For this purpose, the second data processing unit must have an image capture device. The image capture device can be integrated into or connected to the second data processing unit. The image capture device could be, for example, a webcam, a (digital) video camera, or a (digital) camera. Additionally, it may be provided that an audio signal is also transmitted along with the image signal. For this purpose, the second data processing unit can have an audio capture device, such as a microphone, which can be integrated into or connected to the second data processing unit. The image data connection used to transmit the image signal and, if applicable, the audio signal, can be encrypted.The first data processing device may include a display device, for example a screen, and / or a sound playback device, for example a loudspeaker.
[0021] It may be necessary to check, for example using the first, third, or fourth data processing unit, whether the second data processing unit has an image capture device before establishing the image data connection. This check could be performed, for example, by reading the browser's configuration.
[0022] Furthermore, it may be stipulated that, before establishing the video data connection, a check is performed to determine whether the second data processing device has video software or a browser-based video telephony service for providing the video data connection. If the check is negative, a hyperlink can be provided for downloading the video software. The check can be performed using either the first or the third data processing device. The hyperlink can be provided using either the first or the third data processing device, for example, on the provider's website. Examples of video software include Skype or FaceTime. Alternatively or additionally, video software provided by the provider can be downloaded.
[0023] In the first data processing unit, a transaction identification number is recorded and assigned to the user data. This transaction identification number is intended to be generated beforehand by the fourth data processing unit, for example, after the customer data has been received from the third data processing unit. The transaction identification number serves as the unique identifier for the user's identification process. A separate, unique transaction identification number is created for each user identification process. For example, if a user wants to open an account at two banks, they must identify themselves at both banks. A separate transaction identification number is created for each identification process and assigned to the user data.
[0024] The transaction identification number is transmitted from the fourth data processing facility to the second data processing facility, for example via email or SMS ( SMS - Short Message Service ) . It may also be possible for the transaction identification number to be displayed in the browser of the second data processing facility. The transaction identification number is transmitted from the second data processing facility to the first data processing facility, for example, via email, SMS, or an electronic form into which the user enters the transaction identification number for transmission.
[0025] The transaction identification number can be, for example, a 9-digit number. Alternatively, it can be a mix of alphanumeric characters. The transaction identification number can consist of a randomly generated number, character, sequence of numbers, and / or character string. It can be stipulated that the transaction identification number is generated based on a previous transaction identification number. For this purpose, a random number can be included in the transaction identification number in addition to the previous one. Positions between the previous transaction identification number and the random number are padded with zeros. Finally, the last digit can be swapped with any other digit. The transaction identification number can be designed to be tamper-proof.For control purposes, it must be ensured that the transaction identification number is uniquely assigned to an identifier so that it can be traced at a later time. Furthermore, it may be stipulated that the transaction identification number is only valid for a limited period, for example, one hour. After this time has expired, the transaction identification number becomes invalid and can no longer be used.
[0026] After the transaction identification number is captured (e.g., by entry), it can be transmitted from the first data processing unit to the fourth data processing unit. In response, the fourth data processing unit can transmit the user data associated with the transaction identification number back to the first data processing unit. This transmission can be encrypted. It can be configured that the transmitted user data cannot be modified by the first data processing unit. This prevents manipulation of the user data by the agent. In another embodiment, the user data can be modified by the first data processing unit. This allows for correction or addition to the existing user data.
[0027] A document is captured using the image capture device of the second data processing unit. An image of the document is transmitted to the first data processing unit. Here, the image of the document can be displayed using a display device. The agent may provide the user with instructions regarding a specific positioning of the document so that it is adequately captured by the image capture device. Alternatively or additionally, guidelines indicating a suitable position for the document may be displayed on a display device connected to the second data processing unit. These guidelines can be generated by the first data processing unit and transmitted from there to the second data processing unit.
[0028] The document is being evaluated. This evaluation may include, for example, verifying the document's authenticity and / or the authenticity of a signature on the document. It may be possible for the document to be evaluated automatically using the first data processing unit.
[0029] In connection with a user classified as a new customer, the document can be analyzed to create a user profile so that the user is recognized as an existing customer in future interactions. Registering the user as an existing customer may require verifying their identity, for example, due to legal regulations. It may be necessary to evaluate a personal identification document, such as an identity card, passport, or driver's license.
[0030] Finally, it may be provided that the evaluation result, along with the process identification number and user data, is stored in a database. For this purpose, the data can be transferred from the first data processing unit to the fourth data processing unit and stored in the database linked to it. It may also be provided that the image signal and / or the audio signal are stored at least partially or even completely in the database.
[0031] User identity verification can be performed using the personal identification document. For example, the agent can compare the submitted user data with the information on the personal identification document. The user data can be displayed on a screen, such as in a two-column form. One column contains the submitted user data, while the other is initially empty. During the verification of the personal identification document, the verified and confirmed user data can be transferred to the other column to indicate successful verification. A button can be provided for each data transfer. Empty fields in the form can be highlighted, for example, with a color. Missing data can be added by the agent if necessary. Additionally, the user's appearance can be compared with a photograph on the personal identification document.A checklist can be provided that lists the points to be checked. Furthermore, it may be necessary to evaluate the security features of the personal identification document to verify its authenticity. For example, security features in the form of watermarks and / or structural patterns can be evaluated.
[0032] It may be provided that the following information about the agent is stored in the database: name of a call center where the agent works, location, telephone number, agent name (first name, last name), an agent identification number, a call center identification number and any combination thereof.
[0033] Alternatively, identity verification can be performed automatically using the first data processing unit. This first data processing unit can also be configured to verify the security features of the personal identification document. It may be possible to capture and store an image of the personal identification document. This storage can occur within the first data processing unit, for example, as temporary storage, or in the database linked to the fourth data processing unit. The image can include the front and / or back of the personal identification document. Furthermore, an image of the user can be captured and, if necessary, stored using the image capture device. It may also be possible to extract a photograph from the image of the personal identification document and store it as a separate image file.
[0034] The user image and the photo can be normalized, for example, according to size, color intensity, and / or orientation. The system can also store the number of normalization steps required for each image. Furthermore, the normalized user image and / or the normalized photo can be saved.
[0035] It can also be provided that both images are each converted into an image with reduced colors, for example, a grayscale image or a black and white image. The background around the head can be colored white. The number of adjustment steps for the two images can be saved. Likewise, the converted user image and / or the converted photo image can be saved.
[0036] The following parameters can be determined either individually or in any combination from the two images (in their original, normalized, or converted form): horizontal outer distance of the ears, horizontal outer distance of the eyes, horizontal outer distance from nose to nose (nose width), horizontal outer distance of the neck (neck width), horizontal outer distance of the face below the ears, and horizontal outer distance of the eyebrows. It may be possible to compare the determined distances to check for similarity. The images can be considered identical if at most one element could not be determined (for example, because hair obscures the ears) and no element exhibits a deviation of more than 5%. Additionally, it may be possible to dynamically set an acceptable degree of deviation, for example, in the range of 1% to 20%.This allows for consideration of different security requirements. Furthermore, a similarity assessment of facial shape and, if necessary, other details can be provided.
[0037] Furthermore, it may be provided that the first data processing device reads data fields from the image of the personal identification document. The extracted data may include, for example, a name (first name(s) and / or last name), an academic degree, a date of birth, a place of birth, a nationality, the validity date of the personal identification document, an identification number of the personal identification document, an access number, a signature, and any combination thereof. The aforementioned data may, for example, be printed on the front of the personal identification document.Alternatively or additionally, the following data may be collected by the first data processing establishment: an address (street, house number, city and / or postal code), eye color, height, the date of issue of the personal identification document, the issuing authority, a stage name, and any combination thereof. This data may, for example, be printed on the back of the personal identification document.
[0038] Furthermore, it may be possible to at least partially read a two-line machine-readable zone on the front of an old German identity card (issued until October 30, 2010) or a three-line machine-readable zone on the back of a new German identity card (issued from November 1, 2010). The machine-readable zones can also be fully captured. A monospaced font is generally used for the machine-readable zones. Each character has the same spacing. The symbol "<" is used instead of spaces. Thus, each position in the machine-readable zone is occupied by a character. The first data processing device can be configured to recognize an old or new German identity card.
[0039] It may be stipulated that the captured data undergoes a check, such as a format check and / or a logic check. For example, it can be checked whether the date of birth is entered in the format DD.MM.YY (D - day, M - month, Y - year). When checking a German identity card, only "German" is possible as the nationality. Additionally, a check of foreign identity documents may be included. In this case, only the nationality of the issuing country is possible as the nationality. Furthermore, a check of the verification number of the personal identification document may be performed. For German identity cards, for example, an algorithm for generating a checksum is known. Using the captured (possibly machine-readable) data, the first data processing unit can verify whether the checksum is correct. A further check may include a comparison of the expiration date with a current date.The verification can be classified as failed in the following cases: the personal identification document has expired, the format check and / or the logic check result in a negative result, the checksum is incorrect, or more than three data fields cannot be read. It may be stipulated that the verification is considered failed if any one of the aforementioned cases occurs. It may also be stipulated that the personal identification document evaluation process (identity verification) is restarted if a previous attempt was unsuccessful. The restart can be initiated by the agent or automatically by the first data processing unit.
[0040] It may also be stipulated that security features of a German identity card are recorded and evaluated by the first data processing device. For this purpose, the following security features may be evaluated: a structure in the background of a photograph, a horizontal structure below the photograph, a structure in the central area on the right edge, a structure at the top edge (from the top edge to approximately 1.5 cm below it), and any combination thereof. The aforementioned security features may also be referred to as official security features. The evaluation of the security features can be carried out, for example, by comparison with stored standard templates for the security features. A similarity assessment of the recorded security features with the stored standard templates can be performed.It may be stipulated that the security feature test will only be rated as positive if all recorded security features, preferably all those listed above, pass the comparison with the respective standard templates.
[0041] Alternatively or additionally, the first data processing unit can be used to record and evaluate further security features of a German identity card. These recorded additional security features can then be compared with stored target values. These target values can, for example, be stored in the database linked to the fourth data processing unit.The additional security features for an old German identity card can include the following: the distance from the bottom edge to a lower black line on the front, the distance between two black lines on the front, the distance from the top edge of the machine-readable area to the bottom edge of the photograph on the front, the overall height and / or width of the printed area on the front, the distance from the right edge to the beginning of the printed area on the back, the distance from the bottom edge to the beginning of the surname text, the distance between the surname and the issue date on the back, and any combination thereof. The automatic comparison can be considered successful, for example, if at least six of the aforementioned additional security features could be determined and the deviation from the respective target values is less than 5% in each case.Dynamic adjustment of the deviation may also be provided.
[0042] The additional security features for a new German identity card (issued since 01.11.2010) may include the following features: distance from the bottom edge to the beginning of the bottom edge of the printed photograph on the front, distance between the top edge and the beginning of the identity card number on the front, distance from the top edge to the top edge of the photograph on the front, the overall height and / or the overall width of the printed area on the front, distance from the left edge to the beginning of the printed area on the back, distance from the bottom edge to the beginning of the machine-readable area, height of the machine-readable area on the back, overall width of the machine-readable area on the back, and any combination thereof.The automatic comparison can be classified as successful, for example, if at least six of the aforementioned additional security features could be determined and the deviation from the respective target values is less than 5% in each case. Dynamic adjustment of the deviation can also be provided.
[0043] Alternatively or additionally, the agent may perform a check of the security features and / or other security features. The agent may instruct the user on how to hold the personal identification document (e.g., identity card) in front of the image capture device so that the first data processing device can check the security features and / or other security features, and / or so that the agent can verify the security features and / or other security features.
[0044] Furthermore, it may be stipulated that the user data be transmitted to a fifth data processing entity. This fifth data processing entity then checks whether the user data is at least partially contained in another database linked to it. As a result, the fifth data processing entity can transmit the information about whether the user data is contained in the other database to the first data processing entity.
[0045] Once the evaluation of the personal identification document is successfully completed, i.e., the user's identity has been confirmed, they can be registered as an existing customer. The user's data can be stored in the database, optionally along with a user ID number assigned to the user. For this purpose, it may be stipulated that the user data and / or data from the evaluation of the personal identification document be encrypted and / or compressed before being transmitted from the first data processing facility to the fourth. It may also be stipulated that the transmitted data be converted by the fourth data processing facility into a format that is not readable in plain text.Furthermore, user data and / or data from the evaluation of the personal identification document can be encrypted and / or compressed before being transmitted from the first data processing facility to the third. The data transmission can be carried out, for example, using a POST Base64 string.
[0046] The user may be sent an electronic message confirming successful identification, for example via email and / or SMS.
[0047] Once the user has been successfully verified and / or identified by the service provider, corresponding information can be transmitted to the third-party data processing entity (e.g., the provider's website), optionally along with the transaction identification number. The user can then take further actions, such as concluding the contract. It may be possible for the successfully verified new customer to receive a transaction authentication number (TAN). After entering and verifying the TAN, the user can perform further actions. Further details regarding the TAN are provided below.
[0048] For existing customers and / or successfully verified new customers (who are then registered as existing customers), it may be necessary to compare user data with the database. Additionally or alternatively, each existing customer may be assigned a customer ID number. When the user enters their customer ID number, the system checks whether it is already stored in the database. After successful verification of the user data and / or the customer ID number, the user receives a transaction authentication number (TAN), for example, via email, SMS, and / or a voice message over the phone. The TAN is stored in the database, optionally together with the associated transaction identification number. After entering the TAN on the provider's website, a check is performed to ensure that the entered TAN matches the stored TAN.If the verification is successful, the user is recognized as an existing customer and can immediately perform further actions on the website. The provider's website may display a button that the user can click to indicate that they are an existing customer. This then leads directly to the verification of the user's data. Alternatively, it may be possible to automatically determine that the user is an existing customer, for example, based on the entered user data, particularly the email address.
[0049] The TAN can be generated by the fourth data processing unit, for example, as a 6-digit number. It can be configured that the TAN is only valid for a limited time, for example, up to one hour after its generation. This is checked when the TAN is entered. Furthermore, it can be configured that the user has only a limited number of attempts to enter the TAN. The entry of a non-matching TAN (for example, due to typos) can be limited to three attempts. For this purpose, the fourth data processing unit can be configured to count and verify the number of TAN entries. The fourth data processing unit can also perform a logical check of the TAN, for example, to ensure it adheres to a specific format. It can also be checked whether a transaction identification number exists for the TAN.It may be stipulated that the TAN is deleted from the database after successful entry.
[0050] The database can also store provider data. This provider data can include the following information: first name, last name, company name, address (street, house number, postal code, city), country, a provider identification number, a registration date, and any combination thereof. Furthermore, it can be stored whether a contractual relationship exists between the provider and the service provider. For example, the provider identification number can be linked to user data that is transferred to the third-party data processing entity.
[0051] Furthermore, it may be possible to evaluate a signature on the document. For this purpose, the signature can be captured using the image capture device. The first data processing unit can be configured to compare the captured signature with signatures stored in the database to determine a match. A similarity relation can be used for this comparison, specifying the permissible degree of deviation between the captured and the stored signature for them to be recognized as identical. For example, the signature on a personal identification document, an image of which is stored in the database, could be used as a stored signature.
[0052] The process is executed using several data processing devices. Each data processing device may, for example, include one or more processors and a memory with volatile (e.g., RAM) and / or non-volatile (e.g., hard drive) storage. Furthermore, each data processing device may include communication devices for receiving and / or sending data and / or data streams, for example, a network connection ( LAN - local area network ) , a connection for a wireless network ( WLAN - wireless local area network ) , a USB port (USB - Universal Serial Bus ) ,a Bluetooth adapter and / or a FireWire port (IEEE 1394). The data processing equipment may each include a device for capturing user input, such as a keyboard, a mouse, and / or a touchpad. The data processing equipment may each be connected to a display device. Alternatively, a display device may be integrated into one of the data processing equipment. The display device may have a touch-sensitive screen ( touch screen ) for capturing user input. The data processing devices can be, for example, implemented as a server, web server, personal computer, laptop, tablet PC or smartphone.
[0053] A device or system comprising a first data processing unit, a second data processing unit which includes an image acquisition unit, and a database may be provided, wherein the device is configured or suitable to perform the following procedure: Providing an image data connection for transmitting an image signal between the second data processing unit, which has the image capture device, and the first data processing unit; capturing a transaction identification number assigned to the user data in the first data processing unit; transmitting user data to the first data processing unit; capturing a document using the image capture device and transmitting an image of the document to the first data processing unit via the image data connection; evaluating the document and storing the result of the evaluation with the transaction identification number and the user data in a database.
[0054] The explanations regarding possible configurations made in connection with the procedure for evaluating documents apply accordingly to the device. Description of exemplary embodiments
[0055] Further embodiments are explained in more detail below with reference to figures in a drawing. These show: Fig. 1 a flowchart to provide an overview of the process, Fig. 2 a flowchart showing the detailed sequence of the procedure, Fig. 3 a flowchart for an existing customer and Fig. 4 A flowchart for a new customer.
[0056] Fig. 1The diagram shows a flowchart that provides an overview of the process. A user wants to initiate an order (step 100) in an online shop. Before completing the order, the user enters various personal data on the shop's website, such as their name, address, and date of birth (step 101). Then, in step 102, the system checks whether authentication and / or age verification of the user is required. This might be the case, for example, if the user's shopping cart contains items that are not suitable for minors.
[0057] If authentication or age verification is not required, the order process continues with step 116. The user can then initiate the payment process (step 117) and the order is complete.
[0058] If verification of the user's identity is required, there are two options. The user can engage a service provider who performs the identification online (step 103). The process can be carried out by the user using the computer (tablet, smartphone) used for the order. In this case, it is first checked whether the user is already an existing customer of the service provider (step 104). For this purpose, the user's personal data, which they entered on the shop's website, is compared with data in a database of the service provider. If a match is found, the user is considered an existing customer (step 105). Alternatively, the user can enter a user ID number, which is then verified. If the user is recognized as an existing customer, a transaction number (TAN) is generated by a server of the service provider and sent to the user's computer (e.g.,The TAN is transmitted via email and / or to the user's phone (e.g., via SMS). The user can enter the TAN on the shop's website to confirm their identity (step 106). If the TAN entry is successful (step 107), the authentication is considered successful (step 111). The user can then complete the order with the payment process (step 117).
[0059] If the user is not recognized as an existing customer in step 104 or if the TAN entry in step 107 was unsuccessful, the user is redirected to identity verification step 108. A video connection is established between the user's computer and a verification server, which includes video and audio transmission. The verification server checks whether the required video software is installed on the user's computer. If not, a link to download the video software can be provided (step 112). The verification server generates a transaction identification number, which is linked to the user's personal data (step 109). This transaction identification number can be generated on the service provider's server. It can then be transmitted to the user's computer and displayed there, for example, in a browser.The user can communicate the transaction identification number via video connection to an agent operating the test server, who then enters it into the test server. The transaction identification number is transmitted to the service provider's server. In return, the service provider's server transmits the user's personal data associated with the transaction identification number to the test server. If necessary, the transmitted personal data of the user can be supplemented (step 113).
[0060] The user's identity card is captured via video connection and subsequently evaluated. A photograph of the user is taken for this evaluation (step 110). The evaluation may include a comparison of the user's transmitted personal data with the information on the identity card. Furthermore, a check of the identity card's security features may be performed. The comparison and / or the check can be carried out automatically by the verification server (step 114). The agent may intervene to provide assistance by instructing the user on how to hold the identity card in front of the camera so that the relevant information can be captured. The result of the identity card evaluation, along with the transaction identification number, is stored in the database.If the verification is successful (step 111), meaning the user's identity has been confirmed, this information is sent to the shop's website. The user can then complete the order using the payment process (step 117). This procedure allows for user authentication within a few minutes and requires minimal effort on the user's part.
[0061] If the user decides against using the service provider, they can still use the familiar authentication method via mail (step 115). After this process is successfully completed, the user can also finalize the order using payment process 117. In this case, however, at least a few days will pass.
[0062] Fig. 2This shows a detailed flowchart of the processes at the service provider. A user verification request is sent from the shop's website to the service provider's server (step 201). This request transmits a provider identification number and the user's personal data, which is verified in step 202. Additionally, further data from the webshop (provider) can be checked in step 206. If the verification fails, the process exits at step 204. If the provider identification number is present in the database, the system checks whether the transmitted personal data of the user matches predefined data fields (step 203). These predefined fields were created and saved by the provider beforehand (step 207). An exit at step 205 occurs if the predefined fields are not met. In the case of exits at steps 204 and 205, a new request with revised data can be sent.
[0063] If the requirements are met, a new transaction is created in a database (step 208). A transaction identification number is generated and transmitted (step 209). A user identity verification form is then displayed. In this form, the user can indicate whether they are already an existing customer of the service provider (step 210).
[0064] If the user indicates that they are an existing customer, a corresponding check is performed (step 212). As mentioned above, this may involve checking the user's personal data and / or a customer identification number (step 213). If the check is successful, a TAN is generated (step 215) and sent to the user (steps 216, 217). The TAN is stored in a database (step 221). If the check fails, the process exits (step 214). Users can then enter information into the form (step 210). The TAN is entered into the form in step 218 and subsequently verified in step 219, for example, using the service provider's server. If the verification is successful, the information that the user is registered and identification was successful is transmitted to the shop's website (step 220).
[0065] If the user is not an existing customer, the identity verification described above is carried out (step 211). After successful completion, the TAN is generated and transmitted (steps 215, 216 and 217). After the TAN has been entered and successfully verified, the provider is informed again (steps 218, 219 and 220).
[0066] If the TAN is not successfully verified, the process exits at step 222. During the TAN verification, the number of entry attempts can be counted. If the number of entry attempts is less than or equal to three (step 223), the process returns to step 210. If the number of unsuccessful entries is greater than three, the process exits at step 225. The provider is informed of the failed user authentication (step 220).
[0067] Fig. 3This illustrates the process for an existing customer. A request to verify a user is received from a provider's website (step 301). A provider identification number, also transmitted, is checked (step 302). This involves accessing a database (step 308). If the result is negative, the process terminates (step 303). If the check is successful, a transaction identification number is generated, and a form is provided to the user (step 304). The user can enter their user ID into the form (step 305). The user ID is then checked against the database (step 306). If the check fails, the process terminates. Alternatively, the user's email address can be checked to determine if they are an existing customer. An identity verification process can then be initiated (step 307). If successful, a TAN (transaction authentication number) is generated and sent to the user (step 309).The TAN is assigned to the transaction identification number. The TAN is entered on the provider's website (step 310) and verified (step 311). If the verification fails, the process terminates (step 312). If the verification is successful, corresponding information is sent to the provider (step 313). The user can then continue their actions with the provider, for example, completing an order.
[0068] In Fig. 4This describes the process for a new customer. First, a provider (e.g., the operator of a web shop) sends a request to authenticate a user (step 401). A provider identification number is checked and compared against a database (step 402). If the result is negative, the process exits (step 403). If the check is successful, a transaction identification number is generated and a form is provided to the user (step 404). Next, the user's identity is verified (step 407). The details of the identity verification have already been explained. This can involve accessing the database (step 408), optionally using a CRM system (step 406) and / or validation software (step 405). If the identity cannot be established, the process exits (step 409). If the identity verification is successful, a TAN (transaction authentication number) is generated and sent to the user (step 410).After entering the TAN on the provider's website (step 411), it is verified (step 412). This involves accessing database 408, where the TAN is stored along with the associated transaction identification number. If the verification fails, the process exits (step 413). If the verification is successful, the user can continue on the provider's website (step 414).
[0069] The features disclosed in the foregoing description, claims and figures may be relevant for the realization of the invention both individually and in any combination with one another.
Claims
1. Method for evaluating a document, comprising the following steps: - providing an image data link for transmitting an image signal between a second data processing device, which has an image recording device, and a first data processing device, - transmitting user data to the first data processing device, - capturing a document by means of the image recording device and transmitting an image of the document to the first data processing device by means of the image data link, and - evaluating the document, characterized by the following steps: - generating, in a fourth data processing device, a process identification number which is used to uniquely identify an identification process for the user, wherein a unique process identification number is created for each identification process of the user, - transmitting the process identification number from the fourth data processing device to the second data processing device, - transmitting the process identification number from the second data processing device to the first data processing device, - capturing the process identification number in the first data processing device, wherein the process identification number is assigned to the user data, - transmitting the process identification number from the first data processing device to the fourth data processing device, and - transmitting the user data from the fourth data processing device to the first data processing device in response to receiving the process identification number.
2. Method according to one of the preceding claims, wherein, before providing the image data link, it is checked whether the second data processing device has a video software for providing the image data link, and, if the check is negative, a hyperlink is provided, by means of which the video software can be downloaded.
3. Method according to one of the preceding claims, wherein the document is evaluated automatically by means of the first data processing device or manually.
4. Method according to one of the preceding claims, wherein a personal identification document is evaluated as the document.
5. Method according to Claim 4, wherein security features of the personal identification document are evaluated in order to check the authenticity of the personal identification document.
6. Method according to Claim 4 or 5, wherein the personal identification document is evaluated automatically by means of the first data processing device, wherein the captured machine-readable data are checked by the first data processing device by means of an algorithm for forming a checksum, which algorithm is known for German identity cards.
7. Method according to one of Claims 4 to 6, wherein, during the evaluation, a two-line machine-readable region on the front side of an old German identity card, issued until 30 October 2010, or a three-line machine-readable region on the rear side of a new German identity card, issued from 1 November 2010, is at least partially read out.
8. Method according to one of the preceding claims, wherein a signature on the document is evaluated.
9. Method according to one of the preceding claims, wherein a sound signal is transmitted together with the image signal.
10. Method according to one of the preceding claims, wherein the image signal and / or the sound signal are stored at least partially in a database.
11. Method according to one of the preceding claims, wherein the result of the evaluation is stored with the process identification number and the user data in a database.